Security Advisory

CVE-2010-2352

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2010-06-21 19:00:00
Last updated 2024-08-07 02:32:16
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The Node Reference module in Content Construction Kit (CCK) module 5.x before 5.x-1.11 and 6.x before 6.x-2.7 for Drupal does not perform access checks before displaying referenced nodes, which allows remote attackers to read controlled nodes.